Back to overview

Security+ Abkürzungen (CompTIA) mit Erklärungen

Discover Security+ Abkürzungen (CompTIA) mit Erklärungen: 302 flashcards with questions and answers.

Subject
Sciences / Computer science
Language of creation
English
302 flashcards No ratings yet 0 views
Add to my sets

Sign in to add this set to your collection. You will return here afterwards.

Cards in this set

Card 61

Question

DMZ

Answer

Demilitarized zone.

A buffer zone between the Internet and an internal network. 

It allows access to services while segmenting access to the internal network.

Internet clients can access the services hosted on servers in the DMZ, but the DMZ provides a layer of protection for the internal
network.

Card 62

Question

DNAT

Answer

Dynamic Network Address Translation.

A form of NAT that uses multiple public IP
addresses. 

In contrast, PAT uses a single public IP address. It hides addresses on an internal network.

Card 63

Question

DNAT

Answer

Destination Network Address Translation.

A form of NAT that changes the destination IP address for incoming traffic. 

It is used for port forwarding.

Card 64

Question

DNS

Answer

Domain Name System.

Used to resolve host names to IP addresses. 

DNS zones include records such as A records for IPv4 addresses and AAAA records for IPv6 addresses. 

DNS uses UDP port 53 for DNS client queries and TCP port 53 for zone transfers.

DNS poisoning attacks attempt to modify or corrupt DNS data. Secure zone transfers help prevent these attacks. 

A pharming attack is a type of DNS poisoning attack that redirects a web site’s traffic to another web site.

Card 65

Question

DNSSEC

Answer

Domain Name System Security Extensions.

A suite of specifications used to protect the
integrity of DNS records and prevent DNS poisoning attacks.

Card 66

Question

DoS

Answer

Denial-of-service.

An attack from a single source that attempts to disrupt the services provided by the attacked system.

Card 67

Question

DRP

Answer

Disaster recovery plan.

A document designed to help a company respond to disasters, such as hurricanes, floods, and fires. 

It includes a hierarchical list of critical systems and often prioritizes services to restore after an outage. 

Testing validates the plan. 

The final phase of disaster recovery includes a review to identify any lessons learned and may include an update of the plan.

Card 68

Question

DSA

Answer

Digital Signature Algorithm. 

A digital signature is an encrypted hash of a message. 

The sender’s private key encrypts the hash of the message to create the digital signature. 

The recipient decrypts the hash with the sender’s public key, and, if successful, it provides authentication, nonrepudiation,
and integrity. 

Authentication identifies the sender.

Integrity verifies the message has not
been modified. 

Non-repudiation is used with online transactions and prevents the sender from later denying he sent the email.

Card 69

Question

DSL

Answer

Digital subscriber line. 

Improvement over traditional dial-up to access the Internet.

Card 70

Question

DSU

Answer

Data Service Unit.

An interface used to connect equipment to a T1 and similar lines. 

It typically connects with a CSU as a CSU/DSU.

Card 71

Question

EAP

Answer

Extensible Authentication Protocol.

An authentication framework that provides general guidance for authentication methods. 

Variations include EAP-TLS, EAP-TTLS, LEAP, and PEAP.

Card 72

Question

EAP-TLS

Answer

Extensible Authentication Protocol-Transport Layer Security. 

An extension of EAP sometimes used with 802.1x. 

This is one of the most secure EAP standards and is widely implemented. 

The primary difference between PEAP and EAP-TLS is that EAP-TLS requires
certificates on the 802.1x server and on each of the wireless clients.

Card 73

Question

EAP-TTLS

Answer

Extensible Authentication Protocol-Tunneled Transport Layer Security.

An extension of EAP sometimes used with 802.1x. 

It allows systems to use some older authentication methods such as PAP within a TLS tunnel.

It requires a certificate on the 802.1x server but not on the clients.

Card 74

Question

ECC

Answer

Elliptic curve cryptography. 

An asymmetric encryption algorithm commonly used with smaller wireless devices. 

It uses smaller key sizes and requires less processing power than many other encryption methods.

Card 75

Question

ECDHE

Answer

Elliptic Curve Diffie-Hellman Ephemeral.

A version of Diffie-Hellman that uses ECC to generate encryption keys. 

Ephemeral keys are recreated for each session.

Card 76

Question

EFS

Answer

Encrypting File System. 

A feature within NTFS on Windows systems that supports encrypting individual files or folders for confidentiality.

Card 77

Question

EMI

Answer

Electromagnetic interference. 

Interference caused by motors, power lines, and fluorescent lights. 

EMI shielding prevents outside interference sources from corrupting data and prevents data from emanating outside the cable.

Card 78

Question

ESD

Answer

Electrostatic discharge.

Release of static electricity. 

ESD can damage equipment and low
humidity causes a higher incidence of electrostatic discharge (ESD). 

High humidity can cause condensation on the equipment, which causes water damage.

Card 79

Question

ESN

Answer

Electronic Serial Number. 

Numbers used to uniquely identify mobile devices.

Card 80

Question

ESP

Answer

Encapsulating Security Payload. 

IPsec includes both AH and ESP. 

AH provides authentication and integrity using HMAC. 

ESP provides confidentiality, integrity, and authentication using HMAC and AES or 3DES. 

ESP is identified with protocol ID number 50.

How to use this set

Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.

Rejoining the server...

Rejoin failed... trying again in seconds.

Failed to rejoin.
Please retry or reload the page.

The session has been paused by the server.

Failed to resume the session.
Please reload the page.